Flagship dossier · No. II

Exhibit

Defensive open-source intelligence for infrastructure owners — intelligence, presented as evidence

OSINT tools dump data. Exhibit turns it into testimony: every finding is an auditable claim with provenance, a claim tier, a review date, and a falsifier. The pipeline once fabricated a 90%-confidence finding from a re-served scan. The postmortem became the architecture — so the machine that collects the evidence cannot also be the one that believes it.

Golden Gate Book
Dossier II · MMXXVI
Dossier II · Chapter I — The incident that named the system

The machine that collects the evidence cannot be the one that believes it.

A third-party scan found twenty open ports on marcusrichards.dev — a finding the pipeline carried at 90% confidence and a human almost sent to a domain owner. Independent verification showed one open port: the vendor had re-served a cached scan. The system that believed its own evidence was rebuilt as two machines instead of one: the collector and the verifier, with a human holding the deciding vote. AI may propose or summarize — AI never independently verifies.

The collector

Gathers, never judges

Connectors fetch from public sources — certificate transparency, DNS, RDAP, GitHub, urlscan — and record each observation with its source, timestamp, and exact bytes hashed.

The verifier

Judges, never trusts the collector

Claims are fused across sources, scored transparently, and tiered. A claim seen by two independent sources outranks a claim seen by one — and the machine may never close the gap to certainty alone.

The human

Disposes

The review queue is the product's conscience: no finding reaches a report without a human approving, rejecting, or deferring it — and the decision is part of the record.


Dossier II · Chapter II — The three layers

A fusion core, a radar, and a sentinel with memory.

Three subsystems run in sequence, each with its own falsifier. Nothing is trusted across a boundary without being re-examined there.

Layer 1 — The fusion core

Eleven public sources, one claim ledger. Every claim carries its source parameters, timestamp, response state, raw-byte hash, provider identifiers, a terms-of-service snapshot, attribution, claim tier, review date, and falsifier. A terms-of-service gate stands in front of the third-party verdicts: verdicts from vendors whose terms forbid redistribution are read, not repeated.

Layer 2 — The certificate-transparency radar

Subdomains from the certificate firehose. A labeled 20-fixture evaluation reported 1.000 precision and 1.000 recall on the fixture set — presented exactly as what it is, self-consistency against the labeled fixtures, not validation against the wild internet. A shadow-eval harness watches for the day the wild disagrees with the fixtures.

Layer 3 — The coverage-aware temporal sentinel

Change detection that remembers what it couldn't see. A blind source that recovers can masquerade as a new threat; the sentinel records per-source coverage so recovery produces an informational SOURCE RECOVERED note instead of a false alert. Genuine new exposures still alert. A weekly pipeline runs the full sequence on marcusrichards.dev itself.


Dossier II · Chapter III — The record

Thirteen runs against live infrastructure.

Exhibit has run thirteen assessment passes against marcusrichards.dev — the author's own production surface — under a 41-test suite, with every claim stored in an append-only SQLite ledger. The current posture: risk 0, no adverse signals.

13
Assessment runs, live
41
Tests in the suite
11
Public sources fused
MIT
Open source
WHAT IS NOT CLAIMED — Exhibit reads public data; it does not see inside anything. Public-source access is eroding, so findings are dated by construction. The claim tiers are epistemic labels, not guarantees — a VERIFIED claim is a claim that survived independent corroboration, not a claim that cannot be wrong.